Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-19015

Опубликовано: 28 янв. 2019
Источник: nvd
CVSS3: 7.3
CVSS2: 6
EPSS Низкий

Описание

An attacker could inject commands to launch programs and create, write, and read files on CX-Supervisor (Versions 3.42 and prior) through a specially crafted project file. An attacker could exploit this to execute code under the privileges of the application.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:omron:cx-supervisor:*:*:*:*:*:*:*:*
Версия до 3.42 (включая)

EPSS

Процентиль: 39%
0.00173
Низкий

7.3 High

CVSS3

6 Medium

CVSS2

Дефекты

CWE-77
CWE-78

Связанные уязвимости

CVSS3: 7.3
github
больше 3 лет назад

An attacker could inject commands to launch programs and create, write, and read files on CX-Supervisor (Versions 3.42 and prior) through a specially crafted project file. An attacker could exploit this to execute code under the privileges of the application.

EPSS

Процентиль: 39%
0.00173
Низкий

7.3 High

CVSS3

6 Medium

CVSS2

Дефекты

CWE-77
CWE-78